PP-SDLC The privacy protecting systems development life cycle
dc.contributor.author | Skinner, Geoffrey | |
dc.contributor.author | Chang, Elizabeth | |
dc.date.accessioned | 2017-01-30T14:01:50Z | |
dc.date.available | 2017-01-30T14:01:50Z | |
dc.date.created | 2008-11-12T23:21:50Z | |
dc.date.issued | 2005 | |
dc.identifier.citation | Skinner, Geoff and Chang, Elizabeth. 2005. : PP-SDLC The privacy protecting systems development life cycle, in Milutinovic, V. (ed), IPSI Conference, Apr 23 2005. France: IPSI - Academic Mind. | |
dc.identifier.uri | http://hdl.handle.net/20.500.11937/37337 | |
dc.description.abstract |
Many new Privacy Laws and Regulations have placed an increased importance on the correct design and implementation of information systems. This is an attempt to preserve and protect user and information privacy. Incorporating privacy regulations and guidelines into an active information system is often unsuccessful and ineffective. In addition, systems that have already progressed through the development life cycle can very expensive to change once implemented. We propose the integration of privacy preservation methodologies and techniques into each phase of the system development life cycle (SDLC). This is to preserve the privacy of individuals and to protect PII (Personally Identifiable Information) data. The incorporation of IT Security measures in each SDLC phase is also discussed. This is due to its direct relevance and correlation with information system privacy issues. The proposed methodology involves identifying the privacy and security issues in each phase. From there appropriate privacy protecting and security techniques are applied to address these issues. Special mention is made of the recently proposed Common Criteria. The CC is an international standard for IT Security for Information Systems. Specifically, this paper will analyse the way the Common Criteria currently deals with privacy in information systems, and what is needed to improve its current inadequate handling of information privacy. | |
dc.publisher | IPSI - Academic Mind | |
dc.relation.uri | http://www.internetconferences.net | |
dc.subject | privacy impact assessments | |
dc.subject | Common Criteria | |
dc.subject | PIA | |
dc.subject | Privacy Protection | |
dc.subject | Personally Identifiable Information | |
dc.subject | Information Privacy | |
dc.subject | Security | |
dc.subject | Systems Development Life Cycle | |
dc.subject | Trust | |
dc.subject | Privacy | |
dc.subject | information systems | |
dc.subject | SDLC | |
dc.subject | PII | |
dc.title | PP-SDLC The privacy protecting systems development life cycle | |
dc.type | Conference Paper | |
dcterms.source.title | Proceedings of the IPSI-2005 France | |
dcterms.source.series | Proceedings of the IPSI-2005 France | |
dcterms.source.conference | IPSI Conference | |
dcterms.source.conference-start-date | Apr 23 2005 | |
dcterms.source.conferencelocation | France | |
dcterms.source.place | Belgrade | |
curtin.department | Centre for Extended Enterprises and Business Intelligence | |
curtin.identifier | EPR-603 | |
curtin.accessStatus | Open access | |
curtin.faculty | Curtin Business School | |
curtin.faculty | School of Information Systems |